CVE-2014-9003: CSRF
Cross-site request forgery (CSRF) vulnerability in Lantronix xPrintServer allows remote attackers to hijack the authentication of administrators for requests that modify configuration, as demonstrated by executing arbitrary commands using the c parameter in the rpc action.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-9003?
CVE-2014-9003 is considered a high-severity vulnerability due to its ability to allow remote attackers to hijack administrator authentication.
How do I fix CVE-2014-9003?
To fix CVE-2014-9003, update your Lantronix xPrintServer to the latest version that addresses this CSRF vulnerability.
What type of attacks can be performed with CVE-2014-9003?
CVE-2014-9003 allows attackers to execute arbitrary commands on the Lantronix xPrintServer by exploiting CSRF vulnerabilities.
What systems are affected by CVE-2014-9003?
CVE-2014-9003 affects all versions of the Lantronix xPrintServer.
Can CVE-2014-9003 be exploited remotely?
Yes, CVE-2014-9003 can be exploited remotely by attackers to execute unauthorized commands.